PT-2022-18274 · Splunk · Splunk Enterprise

Danylo Dmytriiev

+1

·

Published

2022-05-06

·

Updated

2022-05-14

·

CVE-2022-27183

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Splunk Enterprise versions prior to 8.1.4
Description The issue concerns a Reflected XSS in a query parameter within the Monitoring Console app when configured in Distributed mode. This app is bundled with Splunk Enterprise and is not downloadable from SplunkBase or installed on Splunk Cloud Platform instances. It's noted that the Cloud Monitoring Console is not affected.
Recommendations For versions prior to 8.1.4, update to version 8.1.4 or later to resolve the issue. As a temporary workaround, consider restricting access to the query parameter in the Monitoring Console app to minimize the risk of exploitation.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-27183

Affected Products

Splunk Enterprise